CVE-2016-3319

high Microsoft
CVSS v3 Base Score
7.0
CVSS:3.0/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
37.2%
Exploitation probability in 30 days
Top 3% most likely to be exploited
Attack Characteristics
Attack Vector
Local
Attack Complexity
High
Privileges Required
None
User Interaction
Required
Confidentiality
High
Integrity
High
Availability
High
Published: August 9, 2016 (3565 days ago)
Last Modified: May 6, 2026
Vendor: Microsoft
Source: NVD

Description

The PDF library in Microsoft Windows 8.1, Windows Server 2012 Gold and R2, Windows 10 Gold and 1511, and Microsoft Edge allows remote attackers to execute arbitrary code via a crafted PDF file, aka "Microsoft PDF Remote Code Execution Vulnerability."

CWE

CWE-284

Affected Products

microsoft edgemicrosoft windows 10microsoft windows 8.1microsoft windows server 2012

References